Job Requirements
Wash, DC
Clearance Unspecified Polygraph not specified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
Two Roles Available
-----------------------------------------------------
Lead ISSO Position Summary
Serve as the single point of technical accountability for the ISSO support engagement supporting a 32-system FISMA Moderate portfolio for a federal financial and development agency. The Lead ISSO directs two Senior ISSOs, owns the quality of deliverables submitted to the Government, serves as the primary technical interface to agency cybersecurity leadership, and maintains a hands-on portfolio of systems.
Key Responsibilities
• Direct Senior ISSO workstreams and authorization schedules.
• Chair internal quality reviews before deliverables are submitted to the Government.
• Own the risk and issue register and escalate issues according to required timelines.
• Represent the ISSO team in Change Advisory Board, Change Control Board, Enterprise Review Board, and cybersecurity steering committee forums.
• Prepare Authorizing Official decision briefings.
• Lead responses to FISMA audits, Inspector General reviews, and independent security assessments.
• Maintain hands-on responsibility for an assigned portfolio of systems.
• Review authorization packages and supporting evidence before Government submission.
Minimum Requirements
• U.S. citizenship.
• Eligible for and able to obtain a Tier 4 High Risk Public Trust.
• Hands-on CSAM experience; final RMF deliverables must be authored and advanced within CSAM.
• Experience executing the full NIST SP 800-37 Rev. 2 Risk Management Framework lifecycle on FISMA Moderate systems.
• POA&M lifecycle ownership from finding creation through milestone management, evidence validation, and validated closure.
• Working proficiency in Splunk and ServiceNow, including log verification and ticket-to-POA&M traceability.
• Ability to work onsite in Washington, DC, with daily presence during contract core hours.
• Clean suitability history appropriate for Tier 4 High Risk Public Trust adjudication.
• Ten or more years of federal cybersecurity experience.
• Eight or more years of federal ISSO or Assessment and Authorization (A&A) experience.
• Five or more years directing other ISSOs, with named individuals reporting for technical direction.
• At least one active senior certification: CISM, CISSP, or CISA.
• Demonstrated direct working relationship with a federal ISSM, CISO, Authorizing Official (AO), or AODR.
• Personally reviewed and signed off on SSPs, SARs, RARs, POA&Ms, and assessment evidence before Government submission.
• Led response to a FISMA audit, Inspector General review, or independent security control assessment, including evidence production and finding remediation.
• Working knowledge of CSAM System Inventory, A&A and ATO, SSP and Security Controls, Assessments, Common Control and Inheritance, POA&M, and Continuous Monitoring modules.
Start Date
• Contingent upon contract award; standard two-week notice can be accommodated.
-----------------------------------------------------
Senior ISSO and Designated Alternate Lead Position Summary
Lead the continuous monitoring and vulnerability management workstreams while serving as the designated backup to the Lead ISSO. This position requires maintaining current knowledge of authorization status, deliverable schedules, open risks, and governance commitments so Lead ISSO duties can be assumed without notice.
Key Responsibilities
• Produce monthly continuous monitoring reporting and enterprise dashboards sourced from CSAM telemetry.
• Verify Splunk log ingestion and identify log sources that have stopped forwarding.
• Analyze vulnerability scans, assign severity, and document false-positive determinations.
• Create POA&Ms within three business days of finding identification.
• Perform monthly reconciliation between ServiceNow and CSAM.
• Coordinate response to CISA Known Exploited Vulnerabilities and Emergency Directives within a four-hour notification window.
• Assume Lead ISSO duties during absences, including briefings, prioritization, and artifact approval.
Minimum Requirements
• U.S. citizenship.
• Eligible for and able to obtain a Tier 4 High Risk Public Trust.
• Hands-on CSAM experience; final RMF deliverables must be authored and advanced within CSAM.
• Experience executing the full NIST SP 800-37 Rev. 2 Risk Management Framework lifecycle on FISMA Moderate systems.
• POA&M lifecycle ownership from finding creation through milestone management, evidence validation, and validated closure.
• Working proficiency in Splunk and ServiceNow, including log verification and ticket-to-POA&M traceability.
• Ability to work onsite in Washington, DC, with daily presence during contract core hours.
• Clean suitability history appropriate for Tier 4 High Risk Public Trust adjudication.
• Eight or more years of federal cybersecurity experience.
• Five or more years of ISSO, RMF, or authorization experience.
• Actual backup or alternate lead experience covering for a lead during an absence, including responsibility for briefings, prioritization, and artifact approval.
• At least one active senior certification: CISM, CISSP, or CISA.
• Production vulnerability analysis experience using Tenable Nessus, Qualys, or ACAS, including credentialed scan coverage verification.
• Experience building and maintaining system-level continuous monitoring plans and producing recurring posture reporting for federal decision makers.
• Splunk experience with log source coverage verification, retention validation, and audit trail completeness.
-----------------------------------------------------
Senior ISSO Position Summary
Own security impact analysis, change coordination, security documentation, and incident response coordination for systems within a federal FISMA Moderate portfolio. The Senior ISSO is responsible for identifying changes that may affect authorization boundaries and ensuring security documentation, incident coordination, and control inheritance records remain current and defensible.
Key Responsibilities
• Complete written Security Impact Analyses within three business days of receiving change requests, including affected controls and disposition.
• Complete retrospective Security Impact Analyses within two business days of emergency changes.
• Present security dispositions at change and release boards.
• Maintain SSPs, contingency plans, incident response plans, and control inheritance records in CSAM and designated repositories.
• Coordinate ISSO-level incident response, including system context, Splunk timeline anchoring, situation reports, and root cause analysis inputs.
• Provide system context to incident responders within one business hour of incident declaration.
• Perform quarterly reconciliation of inherited controls against provider Customer Responsibility Matrices and Shared Responsibility Matrices.
Minimum Requirements
• U.S. citizenship.
• Eligible for and able to obtain a Tier 4 High Risk Public Trust.
• Hands-on CSAM experience; final RMF deliverables must be authored and advanced within CSAM.
• Experience executing the full NIST SP 800-37 Rev. 2 Risk Management Framework lifecycle on FISMA Moderate systems.
• POA&M lifecycle ownership from finding creation through milestone management, evidence validation, and validated closure.
• Working proficiency in Splunk and ServiceNow, including log verification and ticket-to-POA&M traceability.
• Ability to work onsite in Washington, DC, with daily presence during contract core hours.
• Clean suitability history appropriate for Tier 4 High Risk Public Trust adjudication.
• Six or more years of federal cybersecurity experience.
• Four or more years of ISSO, RMF, or authorization experience, including senior or lead responsibility.
• Experience performing Security Impact Analysis under NIST SP 800-128 and issuing written dispositions.
-----------------------------------------------------
Lead ISSO Position Summary
Serve as the single point of technical accountability for the ISSO support engagement supporting a 32-system FISMA Moderate portfolio for a federal financial and development agency. The Lead ISSO directs two Senior ISSOs, owns the quality of deliverables submitted to the Government, serves as the primary technical interface to agency cybersecurity leadership, and maintains a hands-on portfolio of systems.
Key Responsibilities
• Direct Senior ISSO workstreams and authorization schedules.
• Chair internal quality reviews before deliverables are submitted to the Government.
• Own the risk and issue register and escalate issues according to required timelines.
• Represent the ISSO team in Change Advisory Board, Change Control Board, Enterprise Review Board, and cybersecurity steering committee forums.
• Prepare Authorizing Official decision briefings.
• Lead responses to FISMA audits, Inspector General reviews, and independent security assessments.
• Maintain hands-on responsibility for an assigned portfolio of systems.
• Review authorization packages and supporting evidence before Government submission.
Minimum Requirements
• U.S. citizenship.
• Eligible for and able to obtain a Tier 4 High Risk Public Trust.
• Hands-on CSAM experience; final RMF deliverables must be authored and advanced within CSAM.
• Experience executing the full NIST SP 800-37 Rev. 2 Risk Management Framework lifecycle on FISMA Moderate systems.
• POA&M lifecycle ownership from finding creation through milestone management, evidence validation, and validated closure.
• Working proficiency in Splunk and ServiceNow, including log verification and ticket-to-POA&M traceability.
• Ability to work onsite in Washington, DC, with daily presence during contract core hours.
• Clean suitability history appropriate for Tier 4 High Risk Public Trust adjudication.
• Ten or more years of federal cybersecurity experience.
• Eight or more years of federal ISSO or Assessment and Authorization (A&A) experience.
• Five or more years directing other ISSOs, with named individuals reporting for technical direction.
• At least one active senior certification: CISM, CISSP, or CISA.
• Demonstrated direct working relationship with a federal ISSM, CISO, Authorizing Official (AO), or AODR.
• Personally reviewed and signed off on SSPs, SARs, RARs, POA&Ms, and assessment evidence before Government submission.
• Led response to a FISMA audit, Inspector General review, or independent security control assessment, including evidence production and finding remediation.
• Working knowledge of CSAM System Inventory, A&A and ATO, SSP and Security Controls, Assessments, Common Control and Inheritance, POA&M, and Continuous Monitoring modules.
Start Date
• Contingent upon contract award; standard two-week notice can be accommodated.
-----------------------------------------------------
Senior ISSO and Designated Alternate Lead Position Summary
Lead the continuous monitoring and vulnerability management workstreams while serving as the designated backup to the Lead ISSO. This position requires maintaining current knowledge of authorization status, deliverable schedules, open risks, and governance commitments so Lead ISSO duties can be assumed without notice.
Key Responsibilities
• Produce monthly continuous monitoring reporting and enterprise dashboards sourced from CSAM telemetry.
• Verify Splunk log ingestion and identify log sources that have stopped forwarding.
• Analyze vulnerability scans, assign severity, and document false-positive determinations.
• Create POA&Ms within three business days of finding identification.
• Perform monthly reconciliation between ServiceNow and CSAM.
• Coordinate response to CISA Known Exploited Vulnerabilities and Emergency Directives within a four-hour notification window.
• Assume Lead ISSO duties during absences, including briefings, prioritization, and artifact approval.
Minimum Requirements
• U.S. citizenship.
• Eligible for and able to obtain a Tier 4 High Risk Public Trust.
• Hands-on CSAM experience; final RMF deliverables must be authored and advanced within CSAM.
• Experience executing the full NIST SP 800-37 Rev. 2 Risk Management Framework lifecycle on FISMA Moderate systems.
• POA&M lifecycle ownership from finding creation through milestone management, evidence validation, and validated closure.
• Working proficiency in Splunk and ServiceNow, including log verification and ticket-to-POA&M traceability.
• Ability to work onsite in Washington, DC, with daily presence during contract core hours.
• Clean suitability history appropriate for Tier 4 High Risk Public Trust adjudication.
• Eight or more years of federal cybersecurity experience.
• Five or more years of ISSO, RMF, or authorization experience.
• Actual backup or alternate lead experience covering for a lead during an absence, including responsibility for briefings, prioritization, and artifact approval.
• At least one active senior certification: CISM, CISSP, or CISA.
• Production vulnerability analysis experience using Tenable Nessus, Qualys, or ACAS, including credentialed scan coverage verification.
• Experience building and maintaining system-level continuous monitoring plans and producing recurring posture reporting for federal decision makers.
• Splunk experience with log source coverage verification, retention validation, and audit trail completeness.
-----------------------------------------------------
Senior ISSO Position Summary
Own security impact analysis, change coordination, security documentation, and incident response coordination for systems within a federal FISMA Moderate portfolio. The Senior ISSO is responsible for identifying changes that may affect authorization boundaries and ensuring security documentation, incident coordination, and control inheritance records remain current and defensible.
Key Responsibilities
• Complete written Security Impact Analyses within three business days of receiving change requests, including affected controls and disposition.
• Complete retrospective Security Impact Analyses within two business days of emergency changes.
• Present security dispositions at change and release boards.
• Maintain SSPs, contingency plans, incident response plans, and control inheritance records in CSAM and designated repositories.
• Coordinate ISSO-level incident response, including system context, Splunk timeline anchoring, situation reports, and root cause analysis inputs.
• Provide system context to incident responders within one business hour of incident declaration.
• Perform quarterly reconciliation of inherited controls against provider Customer Responsibility Matrices and Shared Responsibility Matrices.
Minimum Requirements
• U.S. citizenship.
• Eligible for and able to obtain a Tier 4 High Risk Public Trust.
• Hands-on CSAM experience; final RMF deliverables must be authored and advanced within CSAM.
• Experience executing the full NIST SP 800-37 Rev. 2 Risk Management Framework lifecycle on FISMA Moderate systems.
• POA&M lifecycle ownership from finding creation through milestone management, evidence validation, and validated closure.
• Working proficiency in Splunk and ServiceNow, including log verification and ticket-to-POA&M traceability.
• Ability to work onsite in Washington, DC, with daily presence during contract core hours.
• Clean suitability history appropriate for Tier 4 High Risk Public Trust adjudication.
• Six or more years of federal cybersecurity experience.
• Four or more years of ISSO, RMF, or authorization experience, including senior or lead responsibility.
• Experience performing Security Impact Analysis under NIST SP 800-128 and issuing written dispositions.
group id: 91175952